Cyber Resilience
← All news
Corroborated

Adobe Commerce Zero-Day Exploited to Backdoor Online Stores

Our takeStyleSmuggler zero-day in Adobe Commerce/Magento is actively exploited to backdoor stores and drop a Linux backdoor. Patch immediately if you run self-hosted instances (some enterprises and smaller shops alike).
Sources (2)
What this means for you — Security leader:Patch Adobe Commerce/Magento immediately if self-hosted; the StyleSmuggler zero-day is under active exploitation to deploy backdoors via code execution.
What this means for you — Lean IT orgs:If you run your own Adobe Commerce or Magento online store, update it today — attackers are actively using a zero-day to backdoor stores.
What this means for you — MSP:Check client Adobe Commerce and Magento instances for the StyleSmuggler zero-day and ensure they are patched; it is being exploited in the wild to install Linux backdoors.
What this means for you — Researcher:StyleSmuggler is a zero-day in Adobe Commerce/Magento under active exploitation; review the technical details once released.